Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill exposes shell-based commands (`python3 scripts/commute_opt.py ...`) but does not declare any `permissions` or `allowed-tools` scope to constrain execution. In an agent ecosystem, missing tool scoping can let the agent invoke shell access more broadly than intended, increasing the chance of unintended command execution or abuse if inputs are later incorporated unsafely.
